Privilege Escalation
Step 1: Upgrade Your Shell
python -c 'import pty; pty.spawn("/bin/bash")'
python3 -c 'import pty; pty.spawn("/bin/bash")'
export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/tmp
export TERM=xterm-256color
alias ll='ls -lsaht --color=auto'
# Background and fix terminal
Ctrl + Z
stty raw -echo; fg; reset
stty columns 200 rows 200Step 2: Enumeration – System Context
Capabilities & Tooling
which gcc
which cc
which python
which perl
which wget
which curl
which fetch
which nc
which ncat
which nc.traditional
which socatCompilation / System Info
Arch & Kernel
Step 3: User Context
Step 4: Credentials & Configs
Step 5: Escalation Primitives
SUID / GUID
File Capabilities
Step 6: Process & Cron Monitoring
Running Processes
Network
Cron Jobs
Process Monitoring (pspy)
Step 7: Databases
Step 8: File Transfers
Step 9: NFS
Step 10: Persistence / Living on Host
Step 11: Local Port Forwards
Step 12: Direct Root via /etc/passwd
/etc/passwdStep 13: Miscellaneous
Tools
Last updated